Opportunity brief
Overview
Think. Investigate. Exploit. Capture the Flag.
Unfoldd CTF 2026 is a cybersecurity challenge designed for students, aspiring security researchers, developers, and cybersecurity enthusiasts who want to test their practical problem-solving and security skills.
Participants will face a collection of challenges inspired by real-world cybersecurity concepts across multiple domains, including Web Security, Cryptography, Digital Forensics, OSINT, Reverse Engineering, Steganography, and Miscellaneous challenges.
The objective is simple: analyse the challenge, find the vulnerability or hidden information, and submit the correct flag to earn points.
Join the Community here: Join the WhatsApp Community
What to Expect
- Hands-on cybersecurity challenges
- Multiple difficulty levels, from beginner to advanced
- Challenges across different cybersecurity domains
- Hints to help participants progress when required
- Live leaderboard and competitive scoring
- Opportunity to test practical security and problem-solving skills
Eligibility
- Open to students and cybersecurity enthusiasts.
- Participants from any college, university, or academic background can participate.
- Prior cybersecurity experience is not mandatory, but basic knowledge of computers and the internet is recommended.
- Participants may participate individually or as part of a team, subject to the team-size rules specified for the event.
Competition Format
- The event will be conducted as a Capture The Flag (CTF) competition.
- Participants will solve cybersecurity challenges and submit flags through the official CTF platform.
- Each challenge will carry a specified number of points based on its difficulty.
- The leaderboard will rank participants or teams based on their total score and applicable tie-breaking criteria.
- Challenges may cover Web Security, Cryptography, Digital Forensics, OSINT, Reverse Engineering, Steganography, and Miscellaneous categories.
Rules
- All challenges must be solved through legitimate means.
- Participants must not attack, disrupt, or attempt to compromise the CTF infrastructure, scoreboard, hosting infrastructure, or other participants' systems.
- Do not perform denial-of-service attacks, automated abuse, credential attacks, or infrastructure-level attacks against the competition platform.
- Do not share flags, solutions, or challenge-specific answers with other participants during the competition.
- Do not attempt to gain unauthorised access to another participant's account or team.
- Only designated challenge targets and resources provided as part of the CTF may be tested.
- Participants must not intentionally disrupt the availability or integrity of the competition.
- Any attempt to exploit the competition infrastructure rather than the intended challenge may result in disqualification.
- Organisers reserve the right to investigate suspicious activity and disqualify participants or teams that violate the rules.
Scoring & Tie-Breaking
Participants or teams will be ranked primarily according to the total points earned. In case of a tie, the earlier achievement of the final score may be used as the tie-breaker.
Important
By participating in Unfoldd CTF 2026, participants agree to follow the competition rules and use the provided infrastructure responsibly.
Get ready to think like an attacker, investigate like a forensic analyst, and solve like a security researcher.
Find the flaw. Capture the flag. Unfoldd the challenge.